It has a clear MIT license, a small dependency surface, and no install-time scripts. The lone maintainer and minimal repository provide little evidence of ongoing support, so pinning this obsolete release would create maintenance risk.
35%
Total Score
50
100
64
50
The last release was in May 2014, with no releases in the past 12 months. This long period without updates is strong evidence of abandonment risk.
Only one registry account has publish access. That may be adequate for a small package but leaves limited visible maintainer capacity.
The repository name does not match the package name and its README does not mention the package, so the link does not clearly establish that this repository belongs to the published package.
The repository has no stars or forks and only one watcher. Popularity is not decisive, but these counters provide little supporting evidence of active use or oversight.
The repository has no security policy. For this small, long-inactive project, that is a transparency gap, though it is less important than the lack of maintenance.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
pym/table Version ~0.3 | — | — |
silex/silex Version ~1.0 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.